###BeginCaseStudy###
Case Study 4 – Fabrikam, Inc.
Overview
Fabrikam, Inc. is a real estate company that has 2,000 employees. Fabrikam has a main office and
a branch office. The main office is located in New York City. The branch office is located in Miami.
Existing Environment
Active Directory Environment
The network contains one Active Directory forest named fabrikam.com. The forest contains a single
domain. An Active Directory site named Site1 exists for the office in New York City. An Active
Directory site named Site2 exists for the office in Miami. Site1 contains two domain controllers.
Site2 contains one domain controller. Both sites connect to each other by using a low-latency, highbandwidth WAN link. All servers in the domain run Windows Server 2012 R2.
Site1 contains 1,500 client computers. Site2 contains 300 client computers. Two hundred users
work from home. The computer of each home user is not a member of Active Directory.
Current Network and Computer Environment
Remote Desktop Services (RDS) is deployed to Site1. RDS role services are installed on four
servers. The servers are configured as shown in the following table.
An application named App1 is published as a RemoteApp program.
Version 1.2 of an application named App2.exe is deployed to all of the client computers in
Site1.Version 2.0 of App2.exe is deployed to all of the client computers in Site2.
The client computers deployed to Site1 during the current month have a value of Value1=True in
the registry. Computers deployed before the current month do not have the Value1=True registry
value.
Microsoft System Center 2012 R2 Configuration Manager is used to manage the client computers
in Site1.
Windows Intune is used to manage the client computers in Site2 and the client computers of the
users who work from home.
The relevant client computers in Site1 are configured as shown in the following table.
The relevant client computers in Site2 are configured as shown in the following table.
Configuration Manager Environment
Configuration Manager has the collections configured as shown in the following table.
Configuration Manager has the client settings configured as shown in the following table.
The Configuration Manager collections have the maintenance windows configured as shown in the
following table.
Configuration Manager has the software metering rules configured as shown in the following table.
Configuration Manager has the antimalware policies configured as shown in the following table.
Configuration Manager has the VPN profiles defined as shown in the following table.
Both VPN profiles are provisioned for all supported platforms.
Configuration Manager has a baseline named Baseline1. Baseline1 validates whether
RemoteDesktop is enabled. Baseline1 is deployed to Collection1.
Windows Intune Configuration
Windows Intune has a group named Group1. ComputerA and ComputerB are members of Group1.
A 32-bit update for Windows 8.1 named CustomUpdate1 is added to Windows Intune.
Configuration Manager and Windows Intune are not integrated.
Problem Statements
Fabrikam identifies the following issues on the network:
– RDS users report that when they access the RD Web Access website, they
receive the following security warning message: “The security certificate
presented by this website was not issued by a trusted certificate
authority.”
– The RDS users do not see App1 on the RD Web Access website. They can
see other publishedRemoteApp programs.
– Value1=True is not present on some of the client computers in Site1.
Requirements
Business Goals
Fabrikam plans to implement a single solution to manage all the client computers and devices.
As much as possible, Fabrikam plans to minimize the costs associated with purchasing hardware
and software.
Planned Changes
Fabrikam plans to implement the following changes to the network:
– For Site2, purchase the mobile devices configured as shown in the
following table.
– Start using Windows Intune for mobile device management.
– Approve CustomUpdate1 for Group1.
Technical Requirements
Fabrikam identifies the following technical requirements:
– Minimize administrative effort, whenever possible.
– Manage the purchased mobile devices in Site2 by using Windows Intune.
– Ensure that Baseline1 only assesses Windows 8.1 computers in the
targeted collections.
– For Computer3, limit the CPU usage of antimalware software up to 60
percent during antimalware scans.
– Publish RemoteApp and Desktop Connection programs to the Start screen
of each RDS user’s client computer.
– Create a collection named Collection6, which contains the client
computers in Site1 that do not have the Value1=True registry value.
Application Requirements
Fabrikam identifies the following application requirements:
– Publish App3 as a RemoteApp program.
– Show App1 on the RD Web Access website.
– Deploy a Windows Phone app named App4 to Windows Phone 8.1 users by
using Windows Intune.
###EndCaseStudy###
You need to meet the application requirements of App1.
What should you do?
A.
Modify the Parameters properties of the App1 RemoteApp program.
B.
Run the Set-WebBinding cmdlet.
C.
Run the Set-RDRemoteApp cmdlet.
D.
Modify the Application Settings of the RDWeb web application.
Explanation:
https://technet.microsoft.com/en-us/library/jj215494.aspx
Changing the properties for the remoteapp program from the console is also possible, however the publishing of the app on the website is configured on the General tab. This makes A a wrong answer.
Set-RDRemoteApp -ShowInWebAccess True
https://docs.microsoft.com/en-us/powershell/module/remotedesktop/set-rdremoteapp?view=win10-ps